Search
-
Re: Pentest Shopify
-
Pentest Shopify
-
Re: Pentest Shopify
I would recommend submitting a service request to the Shopify's support team to inquire whether this violates their terms of service and if they do allow, what are their restrictions. I haven't heard personally whether someone was successful at performing a pentest against Shopify's platform. Subscribed as I am interested… -
Re: Pentest Shopify
LOL - sounds like a company that doesn't get it. I look forward to reading about Shopify being breached in the news. Usually, if they claim PCI compliance, then they should have a pentest report you can review. And depending on their PCI level, I would normally ask for the ROC or SAQ. If they give you an AOC, you should… -
Re: Pentest Shopify
@MitM - so if Shopify is Level 1 - that's the highest level. If I understand their business correctly, they are probably classified as a Service Provider so the PCI requirements should be a lot more stringent. It also means that they must have been assessed by a PCI QSA. So if you can't include them in your pentest, you…
5 results